ClingSTUN Malware Exploits IoT Vulnerabilities Using Public STUN Servers
Researchers have identified a new Linux-based malware called ClingSTUN that exploits at least 24 known security flaws across various IoT devices, including routers and surveillance systems from multiple manufacturers. The malware leverages legitimate public STUN servers to maintain covert communication with infected devices, avoiding detection by traditional command-and-control infrastructure. The attacks target vulnerabilities dating from 2021 to earlier this year, indicating a broad and ongoing exploitation effort.